View all newsletters
Receive our newsletter - data, insights and analysis delivered to you

Heartbleed bug hits Canada’s tax agency

Hackers attack the private data of about 900 citizens.

By CBR Staff Writer

The Canada’s tax collection agency, the Canada Revenue Agency (CRA), has been hit with the Heartbleed attack, with hackers stealing the data of about 900 citizens.

According to the agency, hackers exploited the Heartbleed vulnerability to remove social insurance numbers, which are used for employment and accessing government benefits, and other information from the CRA systems.

The agency noted: "Based on our analysis to date, Social Insurance Numbers (SIN) of approximately 900 taxpayers were removed from CRA systems by someone exploiting the Heartbleed vulnerability.

"We are currently going through the painstaking process of analysing other fragments of data, some that may relate to businesses, that were also removed."

Canada’s tax collection agency, however, has re-launched its online services, which were taken offline since learning of the issue on 08 April 2014.

"Since then, the CRA worked around the clock to implement a "patch" for the bug, vigorously test all systems to ensure they were safe and secure, and re-launch our online services late yesterday," the agency added.

British parenting site Mumsnet also notified its consumers to reset their passwords in the wake of a Heartbleed-related vulnerability.

Content from our partners
Scan and deliver
GenAI cybersecurity: "A super-human analyst, with a brain the size of a planet."
Cloud, AI, and cyber security – highlights from DTX Manchester

Discovered by researchers at Google and Finnish security firm Codenomicon, the ‘Heartbleed’ bug allows hackers to access the memory of systems that currently run the OpenSSL cryptographic software library used by several websites worldwide that could enable attackers to compromise a range of information without being seen.


Websites in our network
Select and enter your corporate email address Tech Monitor's research, insight and analysis examines the frontiers of digital transformation to help tech leaders navigate the future. Our Changelog newsletter delivers our best work to your inbox every week.
  • CIO
  • CTO
  • CISO
  • CSO
  • CFO
  • CDO
  • CEO
  • Architect Founder
  • MD
  • Director
  • Manager
  • Other
Visit our privacy policy for more information about our services, how Progressive Media Investments may use, process and share your personal data, including information on your rights in respect of your personal data and how you can unsubscribe from future marketing communications. Our services are intended for corporate subscribers and you warrant that the email address submitted is your corporate email address.